PT-2009-1310 · Microsoft · Windows Script Host+3

Publicado

2009-01-02

·

Atualizado

2018-10-30

·

CVE-2008-5823

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Money 2006
Description The issue is related to an ActiveX control in prtstb06.dll, which can cause a denial of service when used with WScript in Windows Script Host on Windows Vista. This occurs when a zero value is set for the Startup property, leading to an access violation and application crash.
Recommendations For Microsoft Money 2006, avoid using the ActiveX control in prtstb06.dll with WScript in Windows Script Host on Windows Vista, especially when setting the Startup property to zero, until a fix is available. As a temporary workaround, consider restricting the use of the ActiveX control in this specific configuration to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-5823

Produtos afetados

Money
Wscript
Windows Script Host
Windows Vista